| Type |
| - |
Arbitrary code execution |
| + |
Sandbox escape |
|
| Description |
| - |
A use after free security issue has been found in the extensions component of the Chromium browser before version 90.0.4430.72. |
| + |
Use after free in extensions in Google Chrome prior to 90.0.4430.72 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension. |
|
| References |
| |
https://chromereleases.googleblog.com/2021/04/stable-channel-update-for-desktop_14.html |
| |
https://crbug.com/1188889 |
|
| Notes |
|